Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-5816

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.4 and 18.11 before 18.11.1 that could have allowed an unauthenticated user to execute arbitrary JavaScript in a user's browser session due to improper path validation under certain conditions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.3%
CVSS Severity
CVSS v3 Score 8.0
Products affected by CVE-2026-5816
  • Gitlab » Gitlab » Version: 18.10.0
    cpe:2.3:a:gitlab:gitlab:18.10.0
  • Gitlab » Gitlab » Version: 18.10.1
    cpe:2.3:a:gitlab:gitlab:18.10.1
  • Gitlab » Gitlab » Version: 18.10.3
    cpe:2.3:a:gitlab:gitlab:18.10.3
  • Gitlab » Gitlab » Version: 18.11.0
    cpe:2.3:a:gitlab:gitlab:18.11.0


Contact Us

Shodan ® - All rights reserved